Описание
Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | DNE | |
| cosmic | DNE | |
| devel | not-affected | 2.8-2 |
| disco | DNE | |
| eoan | not-affected | 2.8-2 |
| esm-apps/focal | not-affected | 2.8-2 |
| esm-apps/xenial | released | 2.6-6.1ubuntu0.1 |
| esm-infra-legacy/trusty | released | 2.6-3ubuntu0.1~esm1 |
| focal | not-affected | 2.8-2 |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.
Apsis Pound before 2.8a allows request smuggling via crafted headers, ...
Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.
Уязвимость прокси-сервера Apsis Pound, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю отправить скрытый HTTP-запрос (атака типа HTTP Request Smuggling)
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3